All of lore.kernel.org
 help / color / mirror / Atom feed
* [DISCUSSION] svsm: attestation + CocoonFs:
@ 2026-03-11  4:29 Nicolai Stange
  2026-03-19 12:00 ` Arun Menon
  0 siblings, 1 reply; 5+ messages in thread
From: Nicolai Stange @ 2026-03-11  4:29 UTC (permalink / raw)
  To: Tyler Fanelli; +Cc: Oliver Steffen, Stefano Garzarella, coconut-svsm

Hi Tyler,

I've been told in one of the svsm devel calls that a capability for
storing some info in plaintext in CocoonFs would be helpful for your
attestation efforts.

Before I go and implement something, let me ask about the nature of that
data.
- What exactly are you planning to store there?
- Presumably the filesystem salt from the image header, supposed to also
  serve as a filesystem ID ([1]), is not sufficient?
- Is the data considered immutable over the lifetime of the FS?
- Is it Ok if that data is not authenticated?

Thanks!

Nicolai

[1] https://coconut-svsm.github.io/cocoon-tpm/cocoonfs/cocoonfs-format.html#image-header

^ permalink raw reply	[flat|nested] 5+ messages in thread
[parent not found: <73724.126031100351500114@us-mta-457.us.mimecast.lan>]

end of thread, other threads:[~2026-03-20  3:22 UTC | newest]

Thread overview: 5+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2026-03-11  4:29 [DISCUSSION] svsm: attestation + CocoonFs: Nicolai Stange
2026-03-19 12:00 ` Arun Menon
2026-03-19 14:04   ` James Bottomley
2026-03-19 16:38     ` Tyler Fanelli
     [not found] <73724.126031100351500114@us-mta-457.us.mimecast.lan>
2026-03-20  3:22 ` Tyler Fanelli

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.